Extending sharing options of local computing resources

ABSTRACT

A method, system, and medium are provided for sharing items residing on a computing device. Items selected for sharing can be made simultaneously available to users on a local network and to users outside of the local network. A remote sharing service allows access to copies of items based on user identifiers associated. Local attributes associated with items are modified such that the user identifiers are associated with the items for providing access via a local network.

SUMMARY

The present invention is defined by the claims below, not this summary.This summary is provided to introduce a selection of concepts in asimplified form that are further described below in the DetailedDescription. This summary is not intended to identify key features oressential features of the claimed subject matter, nor is it intended tobe used as an aid in determining the scope of the claimed subjectmatter. Embodiments of the present invention provide for coordinatingthe sharing of an item residing on a first computing device with a userby way of a remote sharing service and a local sharing application

In a first aspect, a set of computer-executable instructions provides amethod of sharing an item that includes receiving an indication that theitem is to be shared with a user who is associated with a useridentifier. A copy of the item is provided to a remote sharing servicethat permits access to the copy based on the user identifier. The useridentifier is associated with an attribute of the item for providingimmediate access to the item by way of communication with the firstcomputing device.

In another illustrative aspect, a set of computer-executableinstructions provides another method of sharing an item that resides ona first computing device. One embodiment of the method includesproviding a user interface that presents a sharing option for sharingthe item with a user who is associated with a user identifier by way ofa remote sharing service. The embodiment further includes receiving aselection of the sharing option causing configuration of the user'ssharing experience. An attribute of the item is modified such that theuser is immediately permitted to access the item from a second computingdevice upon establishing a connection with the first computing device.

In a third illustrative aspect, a set of computer-executableinstructions provides another method of sharing an item residing on afirst computer. One embodiment includes displaying an option forinvoking a remote sharing service that maintains an association betweena user and a user identifier. The embodiment also includes invoking theremote sharing service such that the remote sharing service retrieves acopy of the item and allows access to the copy based on the useridentifier. The embodiment further includes modifying an attribute ofthe item such that permission to access the item is associated with theuser identifier. According to the embodiment, an indication is receivedindicating that the user is attempting to access the item from a secondcomputing device coupled to the first computing device by way of a LAN,and access is granted to the item incident to verifying that the user isassociated with the user identifier.

BRIEF DESCRIPTION OF THE SEVERAL VIEWS OF THE DRAWINGS

Illustrative embodiments of the present invention are described indetail below with reference to the attached drawing figures, which areincorporated by reference herein and wherein:

FIG. 1 is a block diagram showing an exemplary computing device inaccordance with an embodiment of the present invention;

FIG. 2 is a block diagram showing an exemplary networking environmentsuitable for implementation of an embodiment of the present invention;

FIG. 3 is a schematic diagram showing communication flow in an exemplarynetworking environment suitable for implementation of an embodiment ofthe present invention;

FIG. 4 is an exemplary screenshot showing an illustrative user interfacein accordance with an embodiment of the present invention;

FIGS. 5-8 provide a series of exemplary screenshots that illustrate anexemplary user interface being utilized in accordance with an embodimentof the present invention;

FIG. 9 is a flow diagram showing an illustrative method of sharing anitem in accordance with an embodiment of the present invention;

FIG. 10 is a flow diagram showing an illustrative method of sharing anitem in accordance with an embodiment of the present invention; and

FIG. 11 is a flow diagram showing an illustrative method of sharing anitem in accordance with an embodiment of the present invention.

DETAILED DESCRIPTION

Embodiments of the present invention provide systems and methods forsharing an item residing on a first computing device with a user who isassociated with a user identifier by synchronizing sharing operationsbetween a remote sharing service and a local sharing application.

Acronyms and Shorthand Notations

Throughout the description of the present invention, several acronymsand shorthand notations are used to aid the understanding of certainconcepts pertaining to the associated system and services. Theseacronyms and shorthand notations are solely intended for the purpose ofproviding an easy methodology of communicating the ideas expressedherein and are in no way meant to limit the scope of the presentinvention. The following is a list of these acronyms:

-   -   ACE Access Control Entry    -   ACL Access Control List    -   DACL Discretionary Access Control List    -   MACL Mandatory Access Control List    -   LAN Local Area Network    -   UI User Interface    -   WAN Wide Area Network

The invention may be described in the general context of computer codeor machine-useable instructions, including computer-executableinstructions such as program modules, being executed by a computer orother machine, such as a personal data assistant or other handhelddevice. Generally, program modules including routines, programs,objects, components, data structures, etc., refer to code that performparticular tasks or implement particular abstract data types. Theinvention may be practiced in a variety of system configurations,including hand-held devices, consumer electronics, general-purposecomputers, more specialty computing devices, and the like. The inventionmay also be practiced in distributed computing environments where tasksare performed by remote-processing devices that are linked through acommunications network.

Computer-readable media include both volatile and nonvolatile media,removable and nonremovable media, and contemplates media readable by adatabase, a switch, and various other network devices. By way ofexample, and not limitation, computer-readable media comprise mediaimplemented in any method or technology for storing information.Examples of stored information include computer-executable instructions,data structures, program modules, and other data representations. Mediaexamples include, but are not limited to, RAM, ROM, EEPROM, flash memoryand other memory technology, CD-ROM, digital versatile discs (DVD),holographic media and other optical disc storage, magnetic cassettes,magnetic tape, magnetic disk storage, and other magnetic storagedevices. These technologies can store data momentarily, temporarily, orpermanently.

An exemplary operating environment in which various aspects of thepresent invention may be implemented is described below in order toprovide a general context for various aspects of the present invention.Referring initially to FIG. 1 in particular, an exemplary operatingenvironment for implementing embodiments of the present invention isshown and designated generally as computing device 100. Computing device100 is but one example of a suitable computing environment and is notintended to suggest any limitation as to the scope of use orfunctionality of the invention. Neither should the computing device 100be interpreted as having any dependency or requirement relating to anyone or combination of components illustrated.

Computing device 100 includes a bus 110 that directly or indirectlycouples the following devices: memory 112, one or more processors 114,one or more presentation components 116, input/output ports 118,input/output components 120, and an illustrative power supply 122. Bus110 represents what may be one or more busses (such as an address bus,data bus, or combination thereof). Although the various blocks of FIG. 1are shown with lines for the sake of clarity, in reality, delineatingvarious components is not so clear, and metaphorically, the lines wouldmore accurately be gray and fuzzy. For example, one may consider apresentation component such as a display device to be an I/O component.Also, processors have memory. We recognize that such is the nature ofthe art, and reiterate that the diagram of FIG. 1 is merely illustrativeof an exemplary computing device that can be used in connection with oneor more embodiments of the present invention. Distinction is not madebetween such categories as “workstation,” “server,” “laptop,” “hand-helddevice,” etc., as all are contemplated within the scope of FIG. 1 andreference to “computing device.”

Memory 112 includes computer-storage media in the form of volatileand/or nonvolatile memory. The memory may be removable, nonremovable, ora combination thereof. Exemplary hardware devices include solid-statememory, hard drives, optical-disc drives, etc. Computing device 100includes one or more processors that read data from various entitiessuch as memory 112 or I/O components 120. Presentation component(s) 116present data indications to a user or other device. Exemplarypresentation components include a display device, speaker, printingcomponent, vibrating component, etc.

I/O ports 118 allow computing device 100 to be logically coupled toother devices including I/O components 120, some of which may be builtin. Illustrative components include a microphone, joystick, game pad,satellite dish, scanner, printer, wireless device, keyboard, pen,voice-input device, touch-input device, touch-screen device, interactivedisplay device, or a mouse.

Turning to FIG. 2, an exemplary networking environment 200 forimplementing embodiments of the present invention is shown. Networkingenvironment 200 includes a first computing device 210 and a secondcomputing device 220 that can communicate with each other by way of alocal area network (LAN) 215. As shown in FIG. 2, networking environment200 also includes a third computing device 226 and remote sharingservers 230 and 236 connected by way of a network 217. Network 217 maybe a wide area network (WAN) such as, for example, the Internet.Additionally, computing devices 210, 220, and 226 may communicate witheach other and/or with remote sharing servers 230 and 236 by way ofnetwork 217. Although computing devices 210 and 220 are illustrated asbeing connected by LAN 215, computing devices 210 and 220 may bedirectly connected to each other in an embodiment. In anotherembodiment, computing devices 210 and 220 may be directly connected tonetwork 217.

Networking environment 200 is merely an example of one suitablenetworking environment and is not intended to suggest any limitation asto the scope of use or functionality of the present invention. Neithershould networking environment 200 be interpreted as having anydependency or requirement related to any single component or combinationof components illustrated therein. Computing devices 210, 220, and 226can be any type of computing device that is capable of communicating viaLAN 215 and/or network 217, and may be, for example, computing devicessuch as computing device 100 described above with reference to FIG. 1.

As shown in FIG. 2, computing device 210 includes a file system 211,which has stored thereon items 212 and 214. In an embodiment, forexample, item 212 is a file. In other embodiments, items 212 and/or 214can include multimedia files, documents, applications, devices, and thelike. In one embodiment, item 212 is a folder that contains a file 214.In another embodiment, item 214 is a device such as a connected harddrive, a scanner, or a printer. Of course, file system 211 can include aplurality of folders or other containers used for grouping files andother items. In other embodiments, file system 211 may reside on aseparate machine from computing device 210, such as on a file server orprint server. Throughout the present document, folders, files, programs,images, devices, and the like will be referred to generally as “items.”

Computing device 210 also includes a sharing-service application 216that is associated with a remote sharing service hosted by a remotesharing server 230 or 236. Sharing-service application 216 can beinstalled, according to an embodiment, upon registration of the remotesharing service with computing device 210. Sharing-service application216 facilitates sharing items such as folder 212 and/or file 214 withusers associated with other computing devices such as, for example,computing devices 220 and 226. In one embodiment, invocation ofsharing-service application 216 enables a user of computing device 210to utilize item-sharing services offered by an associated remote sharingservice hosted by a remote sharing server 230 or 236. In variousembodiments, remote sharing servers 230 and 236 retrieve a copy of anitem to be shared and maintain that copy such that other users canaccess it. In various embodiments, computing device 210 includes morethan one sharing application. In some embodiments, computing device 210communicates with a number of sharing services, and includes a localapplication for each service. According to an embodiment of the presentinvention, all of the sharing applications available on computing device210 can be accessed from a single user interface such as, for example, apull-down menu having buttons or other selectable options (e.g., icons)representing each sharing service.

According to various embodiments, sharing-service application 216enables a user of computing device 210 to apply various types of accesspermission settings, which specify a type of access to an item that aparticular user is permitted, to an item such as, for example, bymodifying a security descriptor associated with an item. A securitydescriptor can include an access control list (ACL) such as a mandatoryaccess control list (MACL) or a discretionary access control list(DACL). In various embodiments, a security descriptor includes bothtypes of ACLs. In other embodiments, security descriptors include otherstructures used for authorizing access to a particular item such as, forexample, domain names, log-in names, and the like.

With continued reference to FIG. 2, computing device 210 furtherincludes a local sharing application 218 that facilitates sharing itemswith other users who have access to computing device 210 such as by wayof LAN 215. Local sharing application 218 enables users of computingdevices other than computing device 210 such as, for example, computingdevice 220 to access items stored on computing device 210. As withsharing-service application 216, local sharing application 218 enables auser of computing device 210 to apply access permission settings toitems by modifying associated security descriptors. Furthermore, in someembodiments, ACLs or other security descriptors are created, managed,and modified by way of a directory service such as, for example, ActiveDirectory, a technology developed by Microsoft Corporation of Redmond,Wash. In other embodiments, security descriptors are created, managed,and modified by a user of computing device 210.

In some embodiments, local sharing application 218 is not a full-scaleapplication, but rather is a service or other functionality enabled by aprogram module, communications protocol, application programminginterface (API), or the like. For example, in one embodiment, localsharing application 218 includes a package of services enabled by theServer Message Block (SMB) protocol such as the Common Internet FileSystem (CIFS), available from Microsoft Corporation of Redmond Wash.

In an embodiment, local sharing application 218 includes a nativeapplication or software module residing on computing device 210 and inanother embodiment, local sharing application 218 includes anapplication or software module associated with remote sharing server 230or 236. In a further embodiment, local sharing application 218 includesan API that is called by sharing-service application 216 to ACL items toonline identities. Embodiments of the present invention are capable ofsimilar functionality regardless of the security methods used. In somecases, for example, access to items is managed by utilizing NT Domainauthentication, login authentication, and the like. Additionally, anitem may have a number of corresponding ACLs.

Although not illustrated in FIG. 2, in some embodiments, there can beone or more interfaces disposed between sharing service application 216and local sharing application 218 such that sharing-service application216 can apply access permission settings associated with copies of itemsshared using an associated sharing service to the items residing oncomputing device 210. In an embodiment, sharing-service application 216interfaces with local sharing application 218 to provide local sharingapplication 218 with user identifiers associated with users that havebeen identified as having authority to access copies of the items thatreside on computing device 210. Consequently, local sharing application218 associates those user identifiers with the items such as by creatingaccess control entries (ACEs) that include the user identifiers. Thus,for example, these ACEs can be applied to ACLs associated with itemsthat are to be shared.

It should be noted that any kind of user identifier can be used in theimplementation of various embodiments of the present invention such as,for example, a user's online identification, an email address, a log-inidentifier, a network access identifier, a user-generated identifier,and the like. In various embodiments, the user identifier is used byremote sharing servers 230 or 236 to identify, authenticate, and/orauthorize the associated user with regard to utilization of the sharingservices provided by the remote sharing servers 230 or 236.

With continued reference to FIG. 2, computing device 220 also includes alocal sharing application 224 and may additionally containsharing-services applications, although for clarity, these are notillustrated in FIG. 2. Local sharing application 224 can be identical orsimilar to local sharing application 218. Local sharing application 224is, in other embodiments, a different type of sharing application. Inembodiments of the present invention, local sharing application 224manages access permissions associated with items residing on computingdevice 220. Local sharing applications 218 and 224, either independentlyor in concert, facilitate the ability to share items among computingdevices 210 and 220 by way of LAN 215. In still further embodiments,local sharing applications 218 and 224 facilitate sharing items by wayof communication between computing devices 210 and 220.

As illustrated in FIG. 2, computing device 226 includes asharing-services application 228 which, in various embodiments, issimilar to sharing services application 216. In an embodiment, sharingservices applications 216 and 228 both enable invocation and utilizationof services provided by one of remote sharing servers 230 and 236. Byutilizing those services, a user associated with computing device 210can share items that reside on computing device 210 with another userassociated with computing device 226.

In various embodiments, computing device 210 communicates a copy 234 or240 of an item that is to be shared to remote sharing server 230 or 236and a user associated with computing device 210 sets access permissionson that copy 234 or 240. Accordingly, a user associated with computingdevice 226 may access the copy 234 or 240 of the item according to theaccess permission settings. Remote sharing services such as those hostedby sharing servers 230 and 236 may provide a variety of services,functions, customizations, and other modifications to the sharingexperience. All of these variables are contemplated within the ambit ofthe present invention.

As illustrated in FIG. 2 remote sharing servers 230 and 236 cancommunicate with any of computing devices 210, 220, and 226 by way ofnetwork 217. Remote sharing server 230, as illustrated in FIG. 2,includes a storage component 232 for storing content communicated fromusers of the sharing services offered by remote sharing service 230.Storage component 232 can be a data store, a database, a file system, orthe like. Remote sharing server 230 is implemented on a computing devicehaving a storage component and that the computing device and the storagecomponent are scalable. In some embodiments, remote sharing server 230includes a number of machines across which traffic is load-balanced.Additionally, storage component 232 can include a number of storagecomponents hosted on various machines. The descriptions andillustrations herein are not intended to limit the configuration and/orarchitecture of sharing servers such as those illustrated in FIG. 2.

According to an embodiment of the present invention, remote sharingserver 230 receives a copy 234 of an item to be shared from computingdevice 210 and maintains copy 234 in storage component 232. Accesspermission settings and other forms of security can be associated withcopy 234, and access is granted to users associated with computingdevices 210, 220, and/or 226, depending upon the access permissions setvia remote sharing server 230. As illustrated in FIG. 2, remote sharingserver 236 also includes a storage component 238 for maintaining copies240 of an item for sharing. In an embodiment, remote sharing server 230communicates with remote sharing server 236 for various reasons such as,for example, sharing items or copies of items between the two remotesharing servers 230 and 236.

Turning now to FIG. 3, another exemplary networking environment 300 foruse in implementing embodiments of the present invention is illustrated.Exemplary networking environment 300 includes a first user, user A 310and a second user, user B 312 that communicate with each other by way ofLAN 315. In an embodiment, user A 310 and user B 312 are not initiallyconnected to LAN 315. Nothing in the description or illustration hereinis intended to suggest that user A 310 and user B 312 should beconnected to LAN 315 and any given time. Networking environment 300 alsoincludes a remote sharing server 318 having a storage component 320.Remote sharing server 318 can communicate with user A 310 and user B 312by way of network 317, as illustrated in FIG. 3. In an embodiment,remote sharing server 318 is “peer” computing device where networkingenvironment 300 is a peer-to-peer networking environment. In otherembodiments, remote sharing server 318 includes a website through whichitems can be shared.

As illustrated at 330, user A 310 invokes a sharing-service application316 to facilitate sharing an item 314 that resides on user A's 310computing device 311 with user B 312. User B 312, although notillustrated in FIG. 3, is utilizing a computing device to communicatewith various elements of exemplary networking environment 300. Afternavigating options lists and configurations that may, in someembodiments, be presented to user A 310 by sharing service application316, sharing-service application 316 causes a copy 322 of the item 314to be provided to remote sharing server 318. This copy 322 is maintainedon a storage component 320 so that user B 312 can access it.

In addition to providing copy 322 to remote sharing server 318,sharing-service application 316 also causes a set of access permissionsettings to be applied to item 314, as illustrated at 332. In variousembodiments, access permission settings applied to item 314 are similarto, or the same as, access permission settings associated with copy 322as maintained by remote sharing server 318. In other embodiments, accesspermission settings are modified within computing device 311 such as,for example, to change the format into a format compatible withcomputing device 311. The access permission settings are applied to item314 immediately upon initiating a sharing experience via sharingapplication 316. As illustrated at 334 and 336, respectively, user B 312can access copy 322 when remote sharing server 318 has completed uploadof copy 322 and has completed any internal processes and functionsrelated to providing a sharing service, and user B 312 may immediatelyaccess item 314 from computing device 311, provided that user B 312utilizes a computing device to connect to computing device 311. In someembodiments, this connection includes a connection by way of LAN 315.

With reference to FIG. 4, an illustrative screenshot of an exemplaryuser interface 400 in accordance with an embodiment of the presentinvention is shown. In an embodiment, user interface (UI) 400 isprovided to a user of a computing device and is associated with localsharing applications and services, as understood herein. UI 400 includesvarious features that are present in various embodiments of the presentinvention such as, for example, a viewing window 416 for displaying ahierarchical tree structure representative of an arrangement of a filesystem. As illustrated in FIG. 4, UI 400 also includes a viewing area418 for displaying representations of various folders 422 or otheritems, and can include interactive functionality such that a user canmanipulate and manage items within UI 400.

According to an embodiment of the present invention, a user can selectone or more items 422 for sharing with another user. For example, in anembodiment, a user selects item 424. An indication is communicated tothe associated computing device that indicates that item 424 has beenselected for sharing with another user. As illustrated in FIG. 4, UI 400also provides an indication 426 to the user such as, for example, achange in appearance, outline, highlight, or the like that is applied toitem 424 upon receiving a sharing selection.

In an embodiment, once the user has selected item 424 for sharing withanother user, various types of information associated with item 424 arepresented to the user, as indicated in the information bar 420 shown inFIG. 4. Additionally, in an embodiment, an icon 423 is provided inviewing window 418 to indicate that at least a portion of an item hasbeen shared with other users. In other embodiments, other visualindications that a portion of an item has been shared can be utilized.

After selecting item 424, the user, as illustrated in FIG. 4, providesinput by selecting a button 430 that causes an additional UI 428 to bedisplayed. In an embodiment, additional UI 428 includes a pull-downmenu. In another embodiment, UI 428 includes a window or other type ofinterface. In a further embodiment, the user right-clicks on item 424,causing the display of a context menu that includes a button that can beused to invoke UI 428.

The additional UI 428 presents a variety of options 431, 432, 434, and436 to the user such as, for example, contact information oridentification of users with whom the user can share items. Option 436illustrated in FIG. 4 is an option that facilitates invocation of aremote sharing service. In various embodiments, the additional UI 428provides a number of remote sharing service options, and the inclusionof only one of such options in FIG. 4 and the description here is notintended to limit the contents of such a UI.

Turning now to FIG. 5, an exemplary screenshot of an illustrative UI 500according to an embodiment of the present invention is shown for thepurpose of illustrating an embodiment of a method of sharing an itemthat resides on a first computing device having a display that rendersUI 500. As illustrated in FIG. 5, UI 500 includes icons 510 thatrepresent items that can be shared with another user by way of a localsharing application and/or remote sharing services. UI 500 also includesa button 520 on a task bar that facilitates presentation of sharingoptions incident to user input to button 520. According to an embodimentof the present invention, a user positions cursor 522 over an icon thatrepresents an item that the user wishes to share. In other embodiments,cursor 522 is used to select several items 523 that can be sharedsimultaneously.

Turning to FIG. 6, UI 500 is shown wherein the user has utilized cursor522 to select two items 523 for sharing. An indication 524 of theselection is presented on UI 500 so that the user can see that items 523were selected. As shown in FIG. 6, the user then moves cursor 522 toposition it over button 520. Upon selecting button 520, as illustratedin FIG. 7, a pull-down menu 527 is presented to the user. Button 520 canbe selected in various ways such as, for example, by clicking on thebutton with a mouse, by tapping on the button with a stylus (where thedisplay is a touch-screen display), by a particular keystroke or seriesof keystrokes, and the like.

As further illustrated in FIG. 7, menu 527 includes several options 526for choosing particular users with whom the selected items can beshared. Menu 527 also includes remote sharing service options 528 and530 for choosing one or more remote sharing services to invoke forsharing items. In an embodiment, all of the remote sharing services thathave registered with a computing device can be accessible from menu 527.Accordingly, one aspect of the present invention provides the ability toplug all of the remote sharing service applications into one easilyaccessible location. As shown in FIG. 7, the user has positioned curser522 over an option 528 for invoking a “Contoso Photo Service” by whichthe user may share photos or other items with another user. Uponselection of option 528, the “Contoso Photo Service” is invoked, and asharing-service application provided by “Contoso Photo Service,” whichhas been installed on the user's computer incident to the “Contoso PhotoService” registering with the user's computer, is initiated.

The sharing-service application provides another UI 540, as illustratedin FIG. 8. UI 540 facilitates sharing items with another user by way of“Contoso Photo Service.” As shown in FIG. 8, UI 540 includes variousfeatures such as an identification 536 of the remote sharing servicethat provides UI 540, a first option 538 to sign in to the sharingservice as a different user, an icon 544 that represents a storagecomponent associated with the sharing service, a text-input box 542 forapplying a label to the shared items or to a container in which theshared items will be stored at the sharing service, and a second option546 for accessing an additional UI that facilitates the selection ofaccess permissions to be applied to shared items. The UI 540 alsoincludes additional options 548 and 550 for accepting option selectionsor canceling the invocation of the sharing service, respectively. UI500, as illustrated in FIG. 8 is only an example of a UI that can beprovided by a remote sharing service. In some embodiments, each remotesharing service has a differently configured UI that includes differentoptions and functionalities than the UI 540 illustrated herein.

As illustrated in FIG. 8, the user has input a name of “Wallpapers” tothe text input box 542 and has positioned cursor 522 over the “OK”button 548. Upon selecting the “OK” button 548, in an embodiment, copiesof the items selected for sharing will be provided to “Contoso PhotoService” and will be accessible to another user that the user hasselected, in accordance with the access permissions that the user hasapplied to the copies of the items. In the illustrated embodiment, thecopies will be located in a container labeled “Wallpapers.”Simultaneously, incident to selection of the “OK” button 548, thesharing-service application will interface with a local sharingapplication or service to apply the same access permissions to theactual items residing on the user computer such that the users havingaccess permissions as defined within the “Contoso Photo Service” haveimmediate accessibility to the locally maintained items according to thesame permissions.

To recapitulate, we have described systems and methods for sharing anitem that resides on a first computing device. Turning now to FIG. 9, aflow diagram is provided that shows an illustrative example of a methodof sharing an item that resides on a first computing device inaccordance with an embodiment of the present invention. In variousembodiments, the item can be a file, a folder containing a plurality offiles, a program, and the like. In other embodiments, the item can be adevice such as a printer, scanner, connected hard drive, and the like.At a step 910, an indication that an item is to be shared with a userwho is associated with a user identifier is received. In an embodiment,the user identifier is an identifier used by the remote sharing serviceto identify the user. In some embodiments, the remote sharing servicegenerates the identifier and provides it to the first computing device.In other embodiments, other services or entities can generate and/orprovide the user identifier.

At step 912, an access permission is received. In various embodiments,users set access permissions that allow various levels or types ofaccess to an item such as, for example, “read only,” “edit,” “fullaccess,” and the like. At step 914, a copy of the item is provided to aremote sharing service. In an embodiment, the remote sharing servicepermits the user to access the copy of the item based on the useridentifier being authenticated by the sharing service. Additionally, asshown at step 916, the user identifier is associated with an attributeof the item to permit the user to access the item via a LAN. Inembodiments, the LAN facilitates communication between a secondcomputing device, which is associated with the user, and the firstcomputing device. In various embodiments, the attribute that is modifiedis a security descriptor that includes an ACL. According to embodimentsof the present invention, associating the user identifier with theattribute makes the item immediately available to the user by way of theLAN. In a final illustrative step, step 918, the attribute of the itemis modified to reflect the access permission.

Turning now to FIG. 10, another flow diagram is provided that shows anillustrative example of a method of sharing an item that resides on afirst computer in accordance with an embodiment of the presentinvention. At a step 1010, a user interface is provided that enablesinteraction with a remote sharing service. The user interface, as shownat step 1012, presents sharing options for configuring the user'ssharing experience corresponding to the item such that the user ispermitted to access a copy of the item by way of the remote sharingservice according to sharing options. In various embodiments, thesharing options can include access permissions, selections of users, orother options that impact the user's sharing experience.

At a step 1014, a selection of one or more of the sharing options isreceived and, at step 1016, a copy of the item is provided to thesharing service. At step 1018, an attribute of the item is modified topermit the user immediate access to the item from a second computingdevice upon establishing a connection with the first computing device.In an embodiment, the attribute is a security descriptor which includesa DACL.

In various embodiments, the connection between the two computing devicesincludes a network common to the two computing devices such as, forexample, a LAN or a WAN, that includes a number of LANs. At a step 1020,the user is notified that the copy of the item is available to the userby way of the remote sharing service. In an embodiment, a processlocated on the first computing device provides the notification. Inother embodiments, the remote sharing service provides the notification.At a final illustrative step, step 1022, the user is also notified thatthe item is available to the user by way of access (e.g., through a LAN,WAN, and the like) to the first computing device. The order in which thenotifications are presented can occur opposite the order presentedabove. Additionally, the notifications can occur simultaneously, as canvarious other steps in this and other embodiments of the method.

Turning now to FIG. 11, a final illustrative flow diagram is providedthat shows another example of a method of sharing an item that resideson a first computing device in accordance with an embodiment of thepresent invention. At a step 1110, an option for invoking a remotesharing service that facilitates sharing the item with a user isprovided. The sharing service maintains an association between the userand a user identifier. At a step 1112, the remote sharing service isinvoked, and at step 1114, a copy of the item that can be accessed bythe user is provided to the sharing service such that permission toaccess the copy is based upon the user identifier. In an embodiment,invoking the remote sharing service causes a UI to be provided. In otherembodiments, invocation of the sharing service results in retrieval of aweb page associated with the sharing service that includes a UI.

At step 1116, an attribute of the item is modified such that permissionto access the item is associated with the user identifier. Themodification makes the item immediately available to the user by way ofa LAN that connects the first computing device with a second computingdevice associated with the user. At step 1118, an indication that theuser is attempting to access the item via the LAN is received, and at astep 1120, the user's association with the user identifier is verified.At a final illustrative step, step 1122, the user is granted access tothe item.

Many different arrangements of the various components depicted, as wellas components not shown, are possible without departing from the spiritand scope of the present invention. Embodiments of the present inventionhave been described with the intent to be illustrative rather thanrestrictive. Alternative embodiments will become apparent to thoseskilled in the art that do not depart from its scope. A skilled artisanmay develop alternative means of implementing the aforementionedimprovements without departing from the scope of the present invention.

For example, in one embodiment, a sharing-service application may beinstalled as a plug-in function to a local sharing application. Inanother embodiment, a sharing-service application may be automaticallyinstalled pursuant to a request to install communicated from a sharingserver to a computing device. In a further embodiment, an updatefunctionality may be incorporated such that an ACL associated with anitem is automatically updated to reflect a change in a user identifierassociated with a copy of the item hosted by a sharing service.

According to an embodiment of the present invention, a control paneluser interface may be provided, which displays all of the items that canbe shared, and includes various tools and objects that facilitatesharing the items with other users. In another embodiment, a sharingsubfolder is provided within a start menu. Selection of the subfoldercan invoke various aspects of the present invention.

It will be understood that certain features and subcombinations are ofutility and may be employed without reference to other features andsubcombinations and are contemplated within the scope of the claims. Notall steps listed in the various figures need be carried out in thespecific order described.

The invention claimed is:
 1. One or more computer-readable storage media(“media”) not a signal per se having computer-executable instructionsembodied thereon for performing a method of sharing an item that resideson a first computing device, the method comprising: receiving, at thefirst computing device, an indication to share the item with a secondcomputing device having a computing device identifier; modifying asecurity descriptor of the item to comprise the computing deviceidentifier of the second computing device; providing a copy of the itemto a remote sharing service that permits the second computing device toaccess the copy of the item based on the computing device identifier ofthe second computing device, wherein the computing device identifier ofthe second computing device is generated by the remote sharing service;and providing the second computing device access to the copy of the itembased on modifying the security descriptor associated with the item tocomprise the computing device identifier of the second computing device,wherein access to the item is provided by way of a local area network(LAN) that facilitates communication between the second computing deviceand the first computing device such that accessibility to the items islimited to the second computing device and limited to sessions where thefirst computing device and second computing device are connected to eachother over the LAN.
 2. The media of claim 1, wherein the computingdevice identifier is a network access identifier (NAI).
 3. The media ofclaim 1, wherein the item comprises one of a group consisting of a fileand a folder, wherein the folder contains at least one file.
 4. Themedia of claim 1, wherein the computing device identifier is provided bythe remote sharing service via a sharing-service application running onthe first computing device.
 5. The media of claim 1, wherein providingthe second computing device access to the copy of the item comprisesmaking the item immediately available to the user.
 6. The media of claim1, further comprising receiving an access permission setting thatdefines a type of access to the copy that the second computing device ispermitted.
 7. The media of claim 6, further comprising modifying theattribute of the item such that the item is made available to the secondcomputing device according to the access permission setting.
 8. One ormore computer-readable storage media (“media”) not a signal per sehaving computer-executable instructions embodied thereon for performinga method of sharing an item that resides on a first computing device,the method comprising: providing, on the first computing device, a userinterface that presents at least one sharing option for sharing the itemwith a second computing device having a computing device identifier,wherein the user interface enables interaction with a plurality ofremote sharing services via a menu; receiving a selection of the atleast one sharing option for configuring a sharing experiencecorresponding to the item such that the second computing device ispermitted to access a copy of the item by way of at least one of theplurality of remote sharing services according to the at least onesharing option; modifying an attribute of the item such that the secondcomputing device is immediately permitted to access the item uponestablishing a connection with the first computing device; and notifyingthe second computing device that the copy of the item is available tothe second computing device via the at least one of the plurality ofremote sharing services.
 9. The media of claim 8, wherein the computingdevice identifier comprises a network access identifier (NAI).
 10. Themedia of claim 8, wherein the attribute of the item comprises a securitydescriptor of the item.
 11. The media of claim 10, wherein modifying theattribute of the item comprises modifying the security descriptor of theitem to comprise the computing identifier of the second computingdevice.
 12. The media of claim 8, wherein the at least one sharingoption comprises an access permission setting that defines a type ofaccess.
 13. The media of claim 8, further comprising notifying thesecond computing device that the item is available to the secondcomputing device via a network.
 14. One or more computer-readablestorage media (“media”) not a signal per se having computer-executableinstructions embodied thereon for performing a method of sharing an itemthat resides on a first computing device, the method comprising:displaying, on the first computing device, an option for invoking aremote sharing service that facilitates sharing the item with a secondcomputing device, wherein the remote sharing service maintains anassociation between the second computing device and a computing deviceidentifier of the second computing device, wherein the remote sharingservice generates the computing device identifier; invoking the remotesharing service such that the remote sharing service retrieves a copy ofthe item that may be accessed by the second computing device based on apermission to access the copy of the item, wherein the permission toaccess the copy of the item is associated with the computing deviceidentifier; modifying a security descriptor of the copy of the item suchthat permission to access the item is associated with the computingdevice identifier of the second computing device; receiving anindication that the second computing device is attempting to access thecopy of the item; and granting the second computing device access to thecopy of the item incident to verifying that the second computing deviceidentifier is associated with the permission to access the item.
 15. Themedia of claim 14, wherein modifying the security descriptor of the itemcomprises making the item immediately available to the second computingdevice by way of the local area network (LAN).
 16. The media of claim14, wherein invoking the remote sharing service comprises retrieving aweb page from the remote sharing service, wherein the web page includesa user interface for interacting with the remote sharing service. 17.The media of claim 14, wherein the security descriptor comprises anaccess control list (ACL).
 18. The media of claim 14, wherein thecomputing device identifier comprises a network access identifier (NAI).19. The media of claim 1, wherein accessibility to the item isrestricted using a discretionary access control list.
 20. The media ofclaim 8, wherein the notification is transmitted from the firstcomputing device to the second computing device.